RokData

Security audits

Verify ownership, then run a standards-aligned audit.

Prove the domain is yours with DNS TXT, run a technical audit tagged to SOC 2 / ISO 27001 controls, schedule weekly retests on eligible plans, and get AI recommendations — evidence, not a certificate.

Security findings list with severity badges

Verify first. Audit second.

RokData will not open-scan the internet. Every property must pass DNS TXT or well-known file verification before an audit runs.

  • DNS TXT or file proof of ownership
  • On-demand and weekly recurring audits
  • Admin concurrency caps for shared hosting
  • Clear boundary: informational, authorized only
Domain verification with DNS TXT challenge
Ownership proof before any scan starts.

Findings ranked so SMBs know what to fix.

Severity-ordered results with SOC 2 / ISO control tags, remediation guidance, retest after you ship a fix, and printable reports for client delivery.

  • Headers, TLS, secrets, and common misconfigs
  • CMS / tech fingerprint hints
  • OSV-style dependency surface probes
  • AI recommendations + printable audit report
Prioritised security findings
High / medium / low without the noise.

Remediation that reads like a checklist.

Each finding carries plain-language guidance so owners and freelancers can act — then mark resolved or retest.

  • Actionable copy per check
  • Resolve and retest workflow
  • Feeds the Deep Metrics health score
Remediation detail for a security finding
Fix steps clients can follow.

Trust is a weekly habit.

Verify a domain after signup and schedule recurring audits.